Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Replaced "-genkeypair" with "-cacert" in "Step 3: Optional" part because it appears to be a simple copy-paste mistake.
ErstellungsdatumAktualisierungsdatumBetroffene VersionFix Version

 

16  

Alle

Beschreibung

Diese allgemeinen Anweisungen können verwendet werden, um ein neues SSL-Zertifikat auf einem BMC-Server zu installieren.

...

$JAVAHOME\bin>keytool -keystore "<path to>\<keystore_name>.jks" -genkeypair -keyalg RSA -keysize 2048 -validity <#of days> -dname "cn=<domain name>, ou=<yourOrgUnit> , o=<yourOrgOrCompany>, l=<City/locality>, st=<State/Canton/Province/Land>, c=<Country_ISO3166-digraph>" -alias "<domain name>"

(Optional - if "subject alternative name (SAN)" needs to be used): 

$JAVAHOME\bin>keytool -keystore "<path to>\<keystore_name>.jks" -ext san=dns:Name1,dns:Name2  -genkeypair -keyalg RSA -keysize 2048 -validity <#of days> -dname "cn=<domain name>, ou=<yourOrgUnit> , o=<yourOrgOrCompany>, l=<City/locality>, st=<State/Canton/Province/Land>, c=<Country_ISO3166-digraph>" -alias "<domain name>"

Schritt 3: Erstellen Sie eine neue CSR für Ihren neuen/s Schlüsselspeicher/Schlüsselpaar. (alles in <> kann angepasst werden)

$JAVAHOME\bin>keytool -keystore "<path to>\<keystore_name>.jks" -certreq -alias <domain name> -file "<path to>\<filename>.csr"

(Optional - if "subject alternative name (SAN)" needs to be used): 

$JAVAHOME\bin>keytool -keystore "<path to>\<keystore_name>.jks"

...

-ext san=dns:Name1,dns:Name2

...

-

...

certreq -alias <domain name> -file "<path to>\<filename>.csr"

Schritt 4: Importieren Sie $JAVAHOME\bin>keytoodas Root-CA-Zertifikat und dann das Intermediate CA-Zertifikat. (alles in <> kann angepasst werden)

...